CVE-2008-0854 – Joomla! / Mambo Component com_salesrep - 'rid' SQL Injection
https://notcve.org/view.php?id=CVE-2008-0854
SQL injection vulnerability in the com_salesrep component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the rid parameter in a showrep action to index.php. Vulnerabilidad de Inyección SQL del componente com_salesrep de Joomla! and Mambo, permite a atacantes remotos ejecutar comandos SQL de su elección a través del parámetro rid en una acción showrep en el index.php • https://www.exploit-db.com/exploits/31213 http://securityreason.com/securityalert/3678 http://www.securityfocus.com/archive/1/488267/100/0/threaded http://www.securityfocus.com/bid/27827 https://exchange.xforce.ibmcloud.com/vulnerabilities/40619 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •
CVE-2008-0855 – Facile Forms 1.x - 'catid' SQL Injection
https://notcve.org/view.php?id=CVE-2008-0855
SQL injection vulnerability in the Facile Forms (com_facileforms) component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the catid parameter to index.php. Vulnerabilidad de inyección SQL en el componente Facile Forms (com_facileforms) de Joomla! y Mambo permite a atacantes remotos ejecutar comandos SQL de su elección a través del parámetro catid de index.php. • https://www.exploit-db.com/exploits/31242 http://securityreason.com/securityalert/3679 http://www.securityfocus.com/archive/1/488335/100/0/threaded http://www.securityfocus.com/bid/27880 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •
CVE-2008-0841 – Mambo Component Ricette 1.0 - SQL Injection
https://notcve.org/view.php?id=CVE-2008-0841
SQL injection vulnerability in index.php in the Giorgio Nordo Ricette (com_ricette) 1.0 component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the id parameter. Vulnerabilidad de Inyección SQL en el Componente Giorgio Nordo Ricette (com_ricette) 1.0 para Joomla! y Mambo, que permite a atacantes remotos ejecutar comandos Vulnerabilidad de Inyección SQL de su elección a través del parámetro "id". • https://www.exploit-db.com/exploits/5133 http://www.securityfocus.com/bid/27834 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •
CVE-2008-0846 – Joomla! / Mambo Component com_profile - 'oid' SQL Injection
https://notcve.org/view.php?id=CVE-2008-0846
SQL injection vulnerability in index.php in the com_profile component for Joomla! allows remote attackers to execute arbitrary SQL commands via the oid parameter. Vulnerabilidad de Inyección SQL en el Componente com_profile para Joomla!, que permite a atacantes remotos ejecutar código SQL de su elección a través del parámetro "oid". • https://www.exploit-db.com/exploits/31224 http://marc.info/?l=bugtraq&m=120335361520072&w=2 http://www.securityfocus.com/bid/27851 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •
CVE-2008-0832 – Mambo Component Quran 1.1 - 'surano' SQL Injection
https://notcve.org/view.php?id=CVE-2008-0832
SQL injection vulnerability in index.php in the Kemas Antonius com_quran 1.1 and earlier component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the surano parameter in a viewayat action. Vulnerabilidad de inyección SQL en index.php del componente Kemas Antonius com_quran 1.1 y versiones anteriores para Mambo and Joomla!, permie a atacantes remotos ejecutar comandos SQL de su elección a través del parámetro surano en una acción viewayat. • https://www.exploit-db.com/exploits/5128 http://archives.neohapsis.com/archives/bugtraq/2008-02/0399.html http://osvdb.org/52226 http://secunia.com/advisories/28986 http://www.securityfocus.com/bid/27842 https://exchange.xforce.ibmcloud.com/vulnerabilities/40573 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •